FeedORKL
Use the ORKL Threat Intel Feed integration to get receive threat intelligence indicators from the feed.
- Category
- Data Enrichment & Threat Intelligence
- Pack
- FeedORKL
Configuration parameters
- feed — Fetch indicators
- feedReputation — Indicator Reputation
- feedReliability — Source Reliability (required)
- tlp_color — Traffic Light Protocol Color
- feedExpirationPolicy —
- feedExpirationInterval —
- createRelationships — Create Relationships
- feedFetchInterval — Feed Fetch Interval
- limit — Maximum Indicators per fetch
- feedTags — Tags
- feedBypassExclusionList — Bypass exclusion list
- verify — Trust any certificate (not secure)
- proxy — Use system proxy settings
- feedIncremental — Incremental Feed
Commands (1)
- orkl-get-reports — Retrieves latest Threat Reports from ORKL.